OPERATING SYSTEM: SuSE Linux Office Server SuSE Linux Firewall on CD/Admin host SuSE Linux Enterprise Server 8 SuSE Linux Enterprise Server 7 SuSE Linux Database Server SuSE Linux Connectivity Server SuSE Linux 8.x SuSE Linux 7.x SuSE eMail Server 3.x Slackware Linux 9.0 Slackware Linux 8.x RedHat Linux Advanced Workstation 2.1 for Itanium RedHat Linux Advanced Server 2.1 for Itanium RedHat Linux 9 RedHat Linux 8.0 RedHat Linux 7.3 RedHat Linux 7.2 RedHat Linux 7.1 RedHat Enterprise Linux WS RedHat Enterprise Linux ES RedHat Enterprise Linux AS OpenLinux Workstation 3.x OpenLinux Server 3.x Mandrake Multi Network Firewall 8.x Mandrake Linux 9.x Mandrake Linux 8.x Mandrake Corporate Server 2.x Linux Kernel 2.4.x Gentoo Linux 1.x EnGarde Secure Professional 1.x EnGarde Secure Linux 1.x EnGarde Secure Community 2.x Conectiva Linux 7.0 Conectiva Linux 8 Conectiva Linux 9 Debian GNU/Linux 3.0 Debian GNU/Linux unstable alias sid
DESCRIPTION: Three vulnerabilities have been identified in the Linux Kernel 2.4 branch. One can be exploited to cause a Denial of Service by a malicious person and is very similar to the recent Linux Kernel Denial of Service. The others are local Denial of Service vulnerabilities.
The remote Denial of Service is possible, because malicious people can cause hash table collisions by sending a stream of maliciously crafted fragmented TCP packets. This will cause the system to consume large amounts of CPU resources.
It is possible to cause a kernel oops, because of an unspecified vulnerability in the tty layer. This could possibly reveal sensitive information to local users or cause a Denial of Service.
A malformed address may cause low level mxcsr code to leave garbage in CPU state registers. This could possibly lead to a Denial of Service.
SOLUTION: We are not aware of any official patches for the Linux Kernel.
Secunia recommends that you verify all advisories you receive, by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor.